7.8

CVSS3.0

CVE-2025-2769 - Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability

Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Bdrive NetDrive. An attacker must first obtain the ability to execute low-privileged code on the target system in …

πŸ“… Published: April 23, 2025, 4:51 p.m. πŸ”„ Last Modified: Aug. 14, 2025, 2:33 p.m.

7.8

CVSS3.0

CVE-2025-2768 - Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability

Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Bdrive NetDrive. An attacker must first obtain the ability to execute low-privileged code on the target system in …

πŸ“… Published: April 23, 2025, 4:51 p.m. πŸ”„ Last Modified: Aug. 14, 2025, 2:39 p.m.

9.6

CVSS3.1

CVE-2025-2767 - Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution Vulnerability

Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Arista NG Firewall. Minimal user interaction is required to exploit this vulnerability. The specific flaw exists…

πŸ“… Published: April 23, 2025, 4:51 p.m. πŸ”„ Last Modified: Aug. 14, 2025, 2:40 p.m.

8.8

CVSS3.1

CVE-2025-2765 - CarlinKit CPC200-CCPA Wireless Hotspot Hard-Coded Credentials Authentication Bypass Vulnerability

CarlinKit CPC200-CCPA Wireless Hotspot Hard-Coded Credentials Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of CarlinKit CPC200-CCPA devices. Authentication is not required to exploit this vulnerability. …

πŸ“… Published: April 23, 2025, 4:48 p.m. πŸ”„ Last Modified: July 11, 2025, 2:01 p.m.

8

CVSS3.0

CVE-2025-2764 - CarlinKit CPC200-CCPA update.cgi Improper Verification of Cryptographic Signature Code Execution Vu…

CarlinKit CPC200-CCPA update.cgi Improper Verification of Cryptographic Signature Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of CarlinKit CPC200-CCPA devices. Although authentication is required to exploit t…

πŸ“… Published: April 23, 2025, 4:48 p.m. πŸ”„ Last Modified: July 11, 2025, 2:01 p.m.

6.8

CVSS3.0

CVE-2025-2763 - CarlinKit CPC200-CCPA Improper Verification of Cryptographic Signature Code Execution Vulnerability

CarlinKit CPC200-CCPA Improper Verification of Cryptographic Signature Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of CarlinKit CPC200-CCPA devices. Authentication is not required to exploit this vulnerabil…

πŸ“… Published: April 23, 2025, 4:48 p.m. πŸ”„ Last Modified: July 11, 2025, 2:02 p.m.

7.8

CVSS3.0

CVE-2025-2762 - CarlinKit CPC200-CCPA Missing Root of Trust Local Privilege Escalation Vulnerability

CarlinKit CPC200-CCPA Missing Root of Trust Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of CarlinKit CPC200-CCPA devices. An attacker must first obtain the ability to execute low-privileged code on the target s…

πŸ“… Published: April 23, 2025, 4:47 p.m. πŸ”„ Last Modified: July 11, 2025, 2:07 p.m.

7.8

CVSS3.1

CVE-2025-2761 - GIMP FLI File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

GIMP FLI File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a …

πŸ“… Published: April 23, 2025, 4:47 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:15 p.m.

7.8

CVSS3.1

CVE-2025-2760 - GIMP XWD File Parsing Integer Overflow Remote Code Execution Vulnerability

GIMP XWD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mal…

πŸ“… Published: April 23, 2025, 4:47 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:15 p.m.

6.5

CVSS3.1

CVE-2025-1522 - PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability

PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PostHog. Authentication is required to exploit this vulnerability. The specific flaw exists within the…

πŸ“… Published: April 23, 2025, 4:45 p.m. πŸ”„ Last Modified: Aug. 7, 2025, 6:14 p.m.
Total resulsts: 343975
Page 5166 of 34,398
Β« previous page Β» next page
Filters